mcp-integration

Pass

Audited by Gen Agent Trust Hub on Aug 30, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is entirely composed of documentation, reference guides, and configuration examples for Model Context Protocol (MCP) integration.
  • [SAFE]: No executable scripts or malicious instructions were detected. The skill provides clear guidance on secure practices, including:
  • Recommending environment variables (${API_TOKEN}, ${DB_URL}) instead of hardcoding credentials.
  • Advocating for HTTPS and WSS for secure remote connections.
  • Explaining how to limit tool access in command frontmatter (allowed-tools) to follow the principle of least privilege.
  • [SAFE]: All external URLs and package references (e.g., @modelcontextprotocol/sdk, modelcontextprotocol.io) point to official and well-known resources in the MCP ecosystem.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 30, 2026, 02:56 PM
Security Audit — agent-trust-hub — mcp-integration